Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2021
Exécuté par Nicole (administrateur) sur NICOLE-PC (Acer, inc. TravelMate 7730) (06-04-2021 17:34:28)
Exécuté depuis C:\Users\Nicole\Desktop
Profils chargés: Nicole
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <7>
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHJE.EXE
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [159232 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe [380928 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe [358912 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE [283232 2012-02-29] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016568 2020-12-18] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Nicole\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-03-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-10-02] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MP495 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDA9.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpcpp190: C:\Windows\System32\spool\prtprocs\x64\hpcpp190.dll [651176 2016-08-26] (HP Inc. -> HP Inc.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP495 series: C:\Windows\system32\CNMLMA9.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\Windows\system32\E_ILMHJE.DLL [120320 2011-04-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\HP Universal Print Monitor: C:\Windows\system32\HPMPW081.DLL [127912 2016-08-26] (HP Inc. -> HP Inc.)
HKLM\...\Print\Monitors\HPMLM190: C:\Windows\system32\hpmlm190.dll [310512 2016-08-26] (HP Inc. -> HP Inc.)
HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [117248 2018-02-28] (pdfforge GmbH) [Fichier non signé]
==================== Tâches planifiées (Avec liste blanche) ============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {27AE90D2-B67E-4AE4-B132-69A94CA4BAAE} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [696816 2021-03-26] (Mozilla Corporation -> Mozilla Foundation)
Task: {42B2ECC1-2961-43B2-8167-FA3354CFC49D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-09] (Adobe Inc. -> Adobe)
Task: {4AB9C897-F679-402B-BFAB-6B8BBA1C2CB3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
Task: {4E46F8AE-4C5C-4FA8-B382-ADD4B81AC16F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-10-20] (Google Inc -> Google Inc.)
Task: {7A3C6FC8-6F45-4301-B47C-E3775A669998} - System32\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000 => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupdate.exe [31320 2021-04-05] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {7D6358D9-F813-4E8B-B7BE-FF8FA6FA72AD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-10-20] (Google Inc -> Google Inc.)
Task: {A1CEE82C-83C3-4601-A56A-4E05395DBB3C} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {AAA570D2-3BA9-45AF-B931-F0378EE3E352} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {D298B9CE-E49F-45C6-AB36-686E85E87804} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [6868696 2016-08-26] (Piriform Ltd -> Piriform Ltd)
Task: {EFAEB4D0-54CD-4280-8337-CFA50233323B} - System32\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000 => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupload.exe [31320 2021-04-05] (LogMeIn, Inc. -> LogMeIn, Inc.)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupdate.exe
Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupload.exe
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{15F8540D-2E35-4459-B83A-4F41D2EFFCE4}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{87540C40-AA1F-46B0-9B1C-B95D712F101F}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF DefaultProfile: hshh6z2y.default
FF ProfilePath: C:\Users\Nicole\AppData\Roaming\Mozilla\Firefox\Profiles\hshh6z2y.default [2021-04-06]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.)
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Fichier non signé]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Fichier non signé]
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Fichier non signé]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2016-10-02] (Microsoft Windows -> Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
R3 NETw5s64; C:\Windows\System32\DRIVERS\NETw5s64.sys [6952960 2009-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
R3 SrvHsfHDA; C:\Windows\System32\DRIVERS\VSTAZL6.SYS [292864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfV92; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfWinac; C:\Windows\System32\DRIVERS\VSTCNXT6.SYS [740864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Trois mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2021-04-06 17:34 - 2021-04-06 17:35 - 000011951 _____ C:\Users\Nicole\Desktop\FRST.txt
2021-04-06 17:34 - 2021-04-06 17:35 - 000000000 ____D C:\FRST
2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Downloads\FRST64.exe
2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Desktop\FRST64.exe
2021-04-06 17:06 - 2021-04-06 17:22 - 000232346 _____ C:\Users\Nicole\Desktop\ZHPDiag.txt
2021-04-06 16:54 - 2021-04-06 17:22 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\ZHP
2021-04-06 16:54 - 2021-04-06 16:54 - 000000000 ____D C:\Users\Nicole\AppData\Local\ZHP
2021-04-06 16:54 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Desktop\ZHPSuite.exe
2021-04-06 16:51 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Downloads\ZHPSuite.exe
2021-04-02 03:49 - 2021-04-02 03:49 - 000092399 _____ C:\Users\Nicole\Desktop\2021-04-02-03-48-15-résultats.pdf
2021-04-02 03:47 - 2021-04-02 03:47 - 000084929 _____ C:\Users\Nicole\Desktop\2021-04-02-03-45-02-résultats.pdf
2021-04-02 03:45 - 2021-04-02 03:45 - 000080767 _____ C:\Users\Nicole\Downloads\2021-04-02-03-45-02-résultats.pdf
2021-03-31 07:12 - 2021-03-31 07:12 - 000088802 _____ C:\Users\Nicole\Desktop\mailDevis.pdf
2021-03-29 11:12 - 2021-03-29 11:12 - 000841916 _____ C:\Users\Nicole\Desktop\Mutualia-PapyMamie.pdf
2021-03-26 15:05 - 2021-03-26 15:05 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-03-26 09:32 - 2021-03-29 13:23 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-03-25 11:28 - 2021-03-25 11:28 - 000098473 _____ C:\Users\Nicole\Downloads\Avis_d_impot_2019_sur_les_revenus_2018.pdf
2021-03-25 09:17 - 2021-03-18 14:39 - 000016702 _____ C:\Users\Nicole\Desktop\Classeur1.xlsx
2021-03-15 18:24 - 2021-03-15 18:24 - 000005701 _____ C:\Users\Nicole\Downloads\mes-releves-elec.csv
2021-03-15 16:59 - 2021-03-15 16:59 - 000142225 _____ C:\Users\Nicole\Desktop\SeaBeaL Create Sublime Veste Agata Phildar - Free Tuto.html
2021-03-12 12:02 - 2021-03-12 12:02 - 000002309 _____ C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-03-12 12:02 - 2021-03-12 12:02 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\Teams
2021-03-12 11:58 - 2021-03-12 12:03 - 000000000 ____D C:\Users\Nicole\AppData\Local\SquirrelTemp
2021-03-11 16:22 - 2021-03-11 16:22 - 001289522 _____ C:\Users\Nicole\Downloads\FW Projet garage + abri.zip
2021-02-28 19:25 - 2021-02-28 19:40 - 000000000 ____D C:\Users\Nicole\AppData\Local\TeamViewer
2021-02-28 19:23 - 2021-04-06 16:44 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-02-28 19:23 - 2021-02-28 19:39 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\TeamViewer
2021-02-28 19:23 - 2021-02-28 19:23 - 000001060 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2021-02-28 19:23 - 2021-02-28 19:23 - 000001048 _____ C:\ProgramData\Desktop\TeamViewer.lnk
2021-02-28 19:05 - 2021-02-28 19:06 - 029325064 _____ (TeamViewer Germany GmbH) C:\Users\Nicole\Downloads\TeamViewer_Setup.exe
2021-02-23 20:49 - 2021-02-23 20:49 - 000049065 _____ C:\Users\Nicole\Downloads\document(1).pdf
2021-02-23 20:07 - 2021-03-31 09:09 - 000000000 ____D C:\Users\Nicole\Desktop\JCB
2021-02-21 08:22 - 2021-02-21 08:23 - 000000000 ____D C:\Users\Nicole\Desktop\BELFORT
2021-02-21 08:18 - 2021-03-11 16:22 - 000000000 ____D C:\Users\Nicole\Desktop\travux-2020-garage
2021-02-21 08:12 - 2021-02-21 08:15 - 000000000 ____D C:\Users\Nicole\Desktop\maisonMAX
2021-02-21 08:12 - 2021-02-21 08:13 - 000000000 ____D C:\Users\Nicole\Desktop\maison
2021-02-21 08:09 - 2021-02-21 08:25 - 000000000 ____D C:\Users\Nicole\Desktop\chats
2021-02-19 15:57 - 2021-02-19 15:57 - 000032247 _____ C:\Users\Nicole\Downloads\récapitulatifmensuelvierge2021-01-21.xlsx
2021-02-10 10:17 - 2021-02-10 10:17 - 000053209 _____ C:\Users\Nicole\Downloads\DT05_ELEMENTS VARIABLES ELUS_2020_10.xlsx
2021-02-08 20:20 - 2021-03-30 09:17 - 000000000 ____D C:\Users\Nicole\Desktop\Combe-Vinouse
2021-02-03 10:07 - 2021-02-03 10:07 - 000083288 _____ (Zoom Video Communications, Inc.) C:\Users\Nicole\Downloads\Zoom_cm_ds_mPBmtP0wesWtZnTVF64rjtFc9x54dfPdEhHDq@+3arAldLdZAP73xQ_k6ccd3b0717e79ced_.exe
2021-02-03 08:07 - 2021-02-03 08:07 - 000651536 _____ C:\Users\Nicole\Downloads\TVA.zip
2021-01-30 15:47 - 2021-01-30 15:47 - 002022242 _____ C:\Users\Nicole\Downloads\reglement.pdf
2021-01-28 10:01 - 2021-01-28 10:01 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2021-01-27 20:13 - 2021-03-19 07:48 - 000076597 _____ C:\Users\Nicole\Desktop\IRsimul.xlsx
2021-01-27 19:12 - 2021-01-27 19:12 - 000145575 _____ C:\Users\Nicole\Downloads\RE avis d'imposition Jean-Claude Boisseranc.zip
2021-01-24 08:50 - 2021-03-04 12:50 - 000000000 ____D C:\Users\Nicole\Desktop\Tel24012021
2021-01-21 16:41 - 2021-01-21 16:41 - 000068829 _____ C:\Users\Nicole\Downloads\Commande300-0-21-01-2021-15-41-15-843.pdf
2021-01-21 15:13 - 2021-04-06 17:26 - 000000640 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job
2021-01-21 15:13 - 2021-04-06 17:21 - 000000544 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job
2021-01-21 15:13 - 2021-04-05 21:39 - 000003670 _____ C:\Windows\system32\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000
2021-01-21 15:13 - 2021-04-05 21:39 - 000003574 _____ C:\Windows\system32\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000
2021-01-21 15:13 - 2021-04-05 21:39 - 000000000 ____D C:\Users\Nicole\AppData\Local\GoToMeeting
2021-01-21 15:12 - 2021-01-21 15:12 - 000000000 ____D C:\Users\Nicole\AppData\Local\GoTo Opener
2021-01-20 16:55 - 2021-01-20 16:55 - 002659927 _____ C:\Users\Nicole\Documents\08012021Organigramme CMAR PACA.pdf
2021-01-20 12:26 - 2021-01-20 12:26 - 000013351 _____ C:\Users\Nicole\Downloads\document.pdf
2021-01-20 12:06 - 2021-01-20 12:06 - 000093451 _____ C:\Users\Nicole\Downloads\Facture 14023(1).pdf
2021-01-20 12:05 - 2021-01-20 12:05 - 000093451 _____ C:\Users\Nicole\Downloads\Facture 14023.pdf
2021-01-20 12:04 - 2021-01-20 12:04 - 000458379 _____ C:\Users\Nicole\Downloads\RE Devis menuiserie rénovation.zip
==================== Trois mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2021-04-06 17:01 - 2009-07-14 06:45 - 000026432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-04-06 17:01 - 2009-07-14 06:45 - 000026432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-04-06 16:49 - 2009-07-14 17:24 - 000750364 _____ C:\Windows\system32\perfh00C.dat
2021-04-06 16:49 - 2009-07-14 17:24 - 000150978 _____ C:\Windows\system32\perfc00C.dat
2021-04-06 16:49 - 2009-07-14 07:13 - 001676194 _____ C:\Windows\system32\PerfStringBackup.INI
2021-04-06 16:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2021-04-06 16:46 - 2019-02-05 09:10 - 000000000 ____D C:\ProgramData\Mozilla
2021-04-06 16:45 - 2016-12-07 20:45 - 000000000 ____D C:\Users\Nicole\AppData\LocalLow\Mozilla
2021-04-06 16:44 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-03-30 07:43 - 2016-10-03 14:22 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\XnView
2021-03-29 13:23 - 2016-10-02 15:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-03-29 10:29 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2021-03-20 11:51 - 2020-04-18 11:51 - 000000000 ____D C:\Users\Nicole\Desktop\PhotoTEL-18042020
2021-03-16 08:45 - 2020-07-01 16:44 - 000365568 _____ C:\Users\Nicole\Desktop\treso-mensuel.xlsx
2021-03-10 19:28 - 2018-11-24 10:35 - 000002072 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
==================== SigCheckExt =========================
2016-06-15 04:36 - 2016-06-15 04:36 - 000052224 _____ (HP Inc.) C:\Windows\system32\hpbmiapi.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000052736 _____ (HP Inc.) C:\Windows\system32\hpboid.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000012800 _____ (HP Inc.) C:\Windows\system32\hpboidps.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000078848 _____ (HP Inc.) C:\Windows\system32\hpbpro.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000013312 _____ (HP Inc.) C:\Windows\system32\hpbprops.dll
2016-06-15 04:35 - 2016-06-15 04:35 - 000065024 _____ (HP Inc.) C:\Windows\system32\HPBWSDR.DLL
2016-06-14 04:17 - 2016-06-14 04:17 - 000180736 _____ (HP Inc.) C:\Windows\system32\hplbddrv.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000067072 _____ (HP Inc.) C:\Windows\system32\HPZidr12.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000050688 _____ (HP Inc.) C:\Windows\system32\HPZinw12.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000066048 _____ (HP Inc.) C:\Windows\system32\HPZipm12.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000047104 _____ (HP Inc.) C:\Windows\system32\HPZipr12.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000038400 _____ (HP Inc.) C:\Windows\system32\hpzipt12.dll
2016-06-15 04:36 - 2016-06-15 04:36 - 000024064 _____ (HP Inc.) C:\Windows\system32\hpzisn12.dll
2018-02-28 13:00 - 2018-02-28 13:00 - 000117248 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000046352 _____ (Microsoft Corporation) C:\Windows\setdebug.exe
2016-10-04 21:55 - 2001-01-12 18:04 - 000049424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clspack.exe
2016-10-04 21:55 - 2001-01-12 16:09 - 000313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dx3j.dll
2016-06-15 04:35 - 2016-06-15 04:35 - 000055296 _____ (HP Inc.) C:\Windows\SysWOW64\HPZidr12.dll
2016-06-15 04:35 - 2016-06-15 04:35 - 000039424 _____ (HP Inc.) C:\Windows\SysWOW64\HPZipr12.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000187152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javacypt.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000139536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javaee.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000063248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javaprxy.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000404752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javart.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000015120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jdbgmgr.exe
2016-10-04 21:55 - 2001-01-12 18:04 - 000171280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jit.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000172304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jview.exe
2016-10-04 21:55 - 2008-11-03 12:22 - 000262144 _____ (Sage) C:\Windows\SysWOW64\mlcorert.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000154896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msawt.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000945424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjava.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000021264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjdbc10.dll
2016-10-04 21:55 - 2007-02-13 09:12 - 000503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2016-10-04 21:55 - 2007-02-13 09:12 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2003-04-18 16:29 - 2003-04-18 16:29 - 000082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll
2016-10-04 21:55 - 2001-01-12 18:04 - 000286992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vmhelper.dll
2006-10-26 13:45 - 2006-10-26 13:45 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WISPTIS.EXE
2016-10-04 21:55 - 2001-01-12 18:04 - 000171792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wjview.exe
2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Desktop\FRST64.exe
2021-04-06 16:54 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Desktop\ZHPSuite.exe
2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Downloads\FRST64.exe
2021-04-06 16:51 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Downloads\ZHPSuite.exe
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== BCD ================================
Gestionnaire de d‚marrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume1
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {2499d057-87fe-11e6-a9ef-b5575f199365}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Chargeur de d‚marrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \Windows\system32\winload.exe
description Windows 7
locale fr-FR
inherit {bootloadersettings}
recoverysequence {2499d059-87fe-11e6-a9ef-b5575f199365}
recoveryenabled Yes
osdevice partition=C:
systemroot \Windows
resumeobject {2499d057-87fe-11e6-a9ef-b5575f199365}
nx OptIn
Chargeur de d‚marrage Windows
-----------------------------
identificateur {2499d059-87fe-11e6-a9ef-b5575f199365}
device ramdisk=[C:]\Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\Winre.wim,{2499d05a-87fe-11e6-a9ef-b5575f199365}
path \windows\system32\winload.exe
description Windows Recovery Environment
inherit {bootloadersettings}
osdevice ramdisk=[C:]\Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\Winre.wim,{2499d05a-87fe-11e6-a9ef-b5575f199365}
systemroot \windows
nx OptIn
winpe Yes
Reprendre … partir de la mise en veille prolong‚e
-------------------------------------------------
identificateur {2499d057-87fe-11e6-a9ef-b5575f199365}
device partition=C:
path \Windows\system32\winresume.exe
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
filedevice partition=C:
filepath \hiberfil.sys
debugoptionenabled No
Testeur de m‚moire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume1
path \boot\memtest.exe
description Diagnostics m‚moire Windows
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes
ParamŠtres EMS
--------------
identificateur {emssettings}
bootems Yes
ParamŠtres du d‚bogueur
-----------------------
identificateur {dbgsettings}
debugtype Serial
debugport 1
baudrate 115200
Erreurs de m‚moire RAM
----------------------
identificateur {badmemory}
ParamŠtres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
ParamŠtres du chargeur de d‚marrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
ParamŠtres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
ParamŠtres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}
Options de p‚riph‚rique
-----------------------
identificateur {2499d05a-87fe-11e6-a9ef-b5575f199365}
description Ramdisk Options
ramdisksdidevice partition=C:
ramdisksdipath \Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\boot.sdi
LastRegBack: 2021-04-03 08:16
==================== Fin de FRST.txt ========================